Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 177247 - mail-filter/qmail-scanner-1.25-r1 sandbox violation
Summary: mail-filter/qmail-scanner-1.25-r1 sandbox violation
Status: RESOLVED DUPLICATE of bug 122397
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: New packages (show other bugs)
Hardware: x86 Linux
: High normal (vote)
Assignee: Gentoo Linux bug wranglers
URL: http://rafb.net/p/EQ5Net99.html
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2007-05-05 21:53 UTC by Greg Wheeler
Modified: 2007-05-05 21:56 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Greg Wheeler 2007-05-05 21:53:24 UTC
When emerging qmail-scanner, it fails with an access violation summary to do with clamav

Reproducible: Always

Steps to Reproduce:
1. emerge -av mail-filter/qmail-scanner
Actual Results:  
mail tcprules.d # emerge qmail-scanner -av
 
These are the packages that would be merged, in order:
 
Calculating dependencies  \                                                                                 ... done!
[ebuild  N    ] mail-filter/qmail-scanner-1.25-r1  USE="spamassassin" 0 kB 
 
Total: 1 package (1 new), Size of downloads: 0 kB
 
Would you like to merge these packages? [Yes/No] 
>>> Emerging (1 of 1) mail-filter/qmail-scanner-1.25-r1 to /
 * q-s-1.25st-20050406.patch.gz MD5 ;-) ...                                                             [ ok ]
 * q-s-1.25st-20050406.patch.gz RMD160 ;-) ...                                                          [ ok ]
 * q-s-1.25st-20050406.patch.gz SHA1 ;-) ...                                                            [ ok ]
 * q-s-1.25st-20050406.patch.gz SHA256 ;-) ...                                                          [ ok ]
 * q-s-1.25st-20050406.patch.gz size ;-) ...                                                            [ ok ]
 * qmail-scanner-1.25.tgz MD5 ;-) ...                                                                   [ ok ]
 * qmail-scanner-1.25.tgz RMD160 ;-) ...                                                                [ ok ]
 * qmail-scanner-1.25.tgz SHA1 ;-) ...                                                                  [ ok ]
 * qmail-scanner-1.25.tgz SHA256 ;-) ...                                                                [ ok ]
 * qmail-scanner-1.25.tgz size ;-) ...                                                                  [ ok ]
 * checking ebuild checksums ;-) ...                                                                    [ ok ]
 * checking auxfile checksums ;-) ...                                                                   [ ok ]
 * checking miscfile checksums ;-) ...                                                                  [ ok ]
 * checking qmail-scanner-1.25.tgz ;-) ...                                                              [ ok ]
 * checking q-s-1.25st-20050406.patch.gz ;-) ...                                                        [ ok ]
>>> Unpacking source...
>>> Unpacking qmail-scanner-1.25.tgz to /var/tmp/portage/mail-filter/qmail-scanner-1.25-r1/work
>>> Unpacking q-s-1.25st-20050406.patch.gz to /var/tmp/portage/mail-filter/qmail-scanner-1.25-r1/work
 * Applying q-s-1.25st-20050406.patch.gz ...                                                            [ ok ]
 * Replacing obsolete head/tail with POSIX compliant ones
 *  - fixed autoupdaters/update_avp
 *  - fixed autoupdaters/update_fprot
 *  - fixed autoupdaters/update_sophos
 *  - fixed autoupdaters/update_trend
 *  - fixed configure
 * Adding items to the SILENT_VIRUSES list (bagle,beagle,mydoom,sco,maldal,mimail,novarg,shimg,bugler,cissi,cissy,dloade,netsky,qizy)
>>> Source unpacked.
>>> Compiling source in /var/tmp/portage/mail-filter/qmail-scanner-1.25-r1/work/qmail-scanner-1.25 ...
 
Building Qmail-Scanner 1.25st...
 
This script will search your system for the virus scanners it knows
about, and will ensure that all external programs
qmail-scanner-queue.pl uses are explicitly pathed for performance
reasons.
 
 
It will then generate qmail-scanner-queue.pl - it is up to you to install it
correctly.
 
Searching ....................................
==============================================================
The following binaries and scanners were found on your system:
==============================================================
 
 
mimeunpacker=/usr/bin/ripmime
 
Content/Virus Scanners installed on your System
 
clamdscan=/usr/bin/clamdscan (which means clamscan won't be used as clamdscan is better)
fast_spamassassin=/usr/bin/spamc
 
Qmail-Scanner details.
 
log-details=mailstats.csv
log-crypto=0
fix-mime=2
ignore-eol-check=1
debug=0
notify=psender,nmlvadm
redundant-scanning=0
block-password-protected=0
virus-admin=root@localhost
local-domains='localhost'
silent-viruses='klez','bugbear','hybris','yaha','braid','nimda','tanatos','sobig','winevar','palyh','fizzer','gibe','cailont','lovelorn','swen','dumaru','sober','hawawi','hawaii','holar-i','mimail','poffer','bagle','worm.galil','mydoom','worm.sco','tanx','novarg','\@mm','cissy','cissi','qizy','bugler','dloade','netsky','spam','bagle','beagle','mydoom','sco','maldal','mimail','novarg','shimg','bugler','cissi','cissy','dloade','netsky','qizy'
scanners="clamdscan_scanner","fast_spamassassin"
 
-------------------------------------
st: configuration options for  1.25st
-------------------------------------
admin-fromname='System Anti-Virus Administrator'
minidebug=1
settings-per-domain=0
virus-to-delete=1
dscr-hdrs-text='X-Qmail-Scanner'
 
sa-subject="SPAM:"
 
sa-delta  =0.5
sa-alt    =1
sa-debug  =0    (only valid if sa-alt is enabled)
sa-report =0    (only valid if sa-alt and sa-debug are enabled)
 
Spamassasin Required_Hits=5.0
sa-quarantine=2.1       (messages over 7.1 hits will be quarantined)
sa-delete    =4.2       (messages over 9.2 hits will be deleted)
sa-reject    =0
-------------------------------------------------------------------------
 
If that looks correct, I will now generate qmail-scanner-queue.pl
for your system...
 
Finished. Please read README(.html) and then go over the script to
check paths/etc, and then install as you see fit.
 
Remember to copy quarantine-attachments.txt to /var/spool/qmailscan and then
run "qmail-scanner-queue.pl -g" to generate DB version.
 
 
              ****** FINAL TEST ******
 
Please log into an unpriviledged account and run 
/var/qmail/bin/qmail-scanner-queue.pl -g
 
If you see the error "Can't do setuid", or "Permission denied", then  
refer to the FAQ.
 
(e.g.  "setuidgid qmaild /var/qmail/bin/qmail-scanner-queue.pl -g")
 
 
That's it! To report success:
 
   % (echo 'First M. Last'; cat SYSDEF)|mail jhaar-s4vstats@crom.trimble.co.nz
Replace First M. Last with your name.
>>> Source compiled.
--------------------------- ACCESS VIOLATION SUMMARY ---------------------------
LOG FILE = "/var/log/sandbox/sandbox-mail-filter_-_qmail-scanner-1.25-r1-5441.log"
 
open_wr:   /var/lib/clamav/.dbLock
--------------------------------------------------------------------------------
mail tcprules.d #

Expected Results:  
Completed the emerge and install qmail-scanner.

this was a CLEAN install of gentoo kernel 2.6.20-gentoo-r7..
USE flags: USE="apache2 php mysql ssl maildir imap"

from a clean install, i had:

1) emerge -av php (which also emerged: apache2 & mysql5)
2) followed http://www.gentoo.org/doc/en/qmail-howto.xml

CONTENTS OF sandbox-mail-filter_-_qmail-scanner-1.25-r1-5441.log:

> open_wr:   /var/lib/clamav/.dbLock
Comment 1 Jakub Moc (RETIRED) gentoo-dev 2007-05-05 21:56:22 UTC
Kindly review http://bugs.gentoo.org/page.cgi?id=fields.html#bug_severity

*** This bug has been marked as a duplicate of bug 122397 ***